> Source: [sk182219](https://support.checkpoint.com/results/sk/sk182219)

# sk182219 - Check Point Response to CVE-2024-24910 - local privilege escalation in ZoneAlarm Extreme Security NextGen and Identity Agent

| Property | Value |
|----------|-------|
| Solution ID | sk182219 |
| Date Created | 2024-04-17 |
| Last Modified | 2025-02-09 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R81 (EOS) |
| OS | Windows |

## Symptoms

- * A vulnerability was discovered in ZoneAlarm Extreme Security that allows a local attacker to run code in the context of a ZoneAlarm process, using a specially crafted DLL.

  An attacker must first obtain the ability to execute local privileged code on the target system in order to exploit this vulnerability.

  An attacker can leverage this vulnerability to bypass certain protections enforced by ZoneAlarm.
* This vulnerability was discovered in these Check Point products:

  * ZoneAlarm Extreme Security - versions lower than 4.2.7
  * Identity Agent for Windows - versions lower than R81.070.0000
  * Identity Agent for Windows Terminal Server - versions lower than R81.070.0000

## Solution

This issue was discovered by Renato Garret�n (@dlplastico) and received the ID [CVE-2024-24910](https://www.cve.org/CVERecord?id=2024-24910).

This problem was fixed. The fix is included in:

* [ZoneAlarm Extreme Security](https://www.zonealarm.com) - v4.2.7 and above.
* [Identity Agent for Windows](https://support.checkpoint.com/results/sk/sk134312) - R81.070.0000 and above.
* [Identity Agent for Windows Terminal Server](https://support.checkpoint.com/results/sk/sk134312) - R81.070.0000 and above.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
